CVE-2024-27905 - How an Old Apache Aurora Endpoint Puts Sensitive Data at Risk
April 2024 brought renewed attention to an unassuming but very dangerous vulnerability: CVE-2024-27905, a flaw in the now-retired Apache Aurora project. This
CVE-2024-1919 - Cross-site Scripting (XSS) in SourceCodester Online Job Portal 1. – Exploit, Analysis, and Fix
---
Introduction
A security vulnerability, now tracked as CVE-2024-1919, was identified in the SourceCodester Online Job Portal 1.. The issue poses a risk of
CVE-2024-1920: Critical Vulnerability Discovered in osuuu LightPicture up to 1.2.2 - Hard-coded Cryptographic Key Revealed
A critical vulnerability, identified as CVE-2024-1920, has been discovered in osuuu LightPicture versions up to and including 1.2.2. The security issue
CVE-2024-1918 - Critical Unrestricted File Upload Vulnerability in Beijing Baichuo Smart S42 Management Platform
In February 2024, a critical vulnerability tagged as CVE-2024-1918 was discovered in the Beijing Baichuo Smart S42 Management Platform (up to version 20240219)
CVE-2024-0197 - How a Flaw in SafeNet Sentinel HASP LDK Installer Lets Attackers Escalate Privileges on Windows
In January 2024, a new vulnerability was publicly disclosed affecting Thales’ SafeNet Sentinel HASP LDK – a widely used digital rights management (DRM) software — specifically, its
Episode
00:00:00
00:00:00